StackRadar

CVE-2025-33042

High

Advisory

Published 13 Feb 2026In the index since 29 Sept 2026
Severity
High
worst across findings
CVSS
7.3
base score, highest
EPSS
0.006
47th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
1
of 17,939 indexed, latest versions
Container images
1
deployed by those charts
Fix available
1 of 1
affected package

The matching OSV records carry no description.

Carried by container images the latest versions of 1 of 17,939 indexed charts deploy, on 1 image.

Affected packageAffected versionsFixed inImages
avropypi1.11.2+snapshot1.11.51
OSV records
PYSEC-2026-26
Also known as
GHSA-rp46-r563-jrc7

Charts affected

1 by stars
ChartLatestAffected imagesRadar Score
streaming-stackquench-streaming-stackVerified publisher0.0.41 of 3See more

streaming-stack quench-streaming-stack 0.0.4

1 of the 3 container images this version deploys carry CVE-2025-33042.

Container imageDigestPackageFixed in
ghcr.io/quenchworks/images/karapacedigest-pinnedf0c5c429ddd3
avro@1.11.2+snapshot
1.11.5

Open the chart page →

267

Container images carrying it

1 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
ghcr.io/quenchworks/images/karapacef0c5c429ddd3
avro@1.11.2+snapshot
1.11.5
1

syft 1.42.1 · advisories as of 29 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.